CVE-2023-52620

LOW EPSS 15.3%
Published Mar 21, 20242y ago · Modified Jun 17, 20262w ago
2.5 CVSS 3.1
Low
Find Similar
Published Mar 21, 2024 2y ago
Last Modified Jun 17, 2026 2w ago

Description

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: disallow timeout for anonymous sets Never used from userspace, disallow these parameters.

CVSS Details

Base Score
2.5
Exploitability
1.0
Impact
1.4
Vector string
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:L
Attack Vector Local
Attack Complexity High
Privileges Required Low
User Interaction None
Scope Unchanged
Confidentiality None
Integrity None
Availability Low

Threat Intelligence

EPSS Exploit Probability
15.3% percentile
Exploit & Patch Status
No Known Exploit
Patch Available

Affected Products 13

VendorProductVersionRange
linuxlinux_kernel* <4.19.312
linuxlinux_kernel*≥4.20  –  <5.4.274
linuxlinux_kernel*≥5.5  –  <5.10.215
linuxlinux_kernel*≥5.11  –  <5.15.151
linuxlinux_kernel*≥5.16  –  <6.1.81
linuxlinux_kernel*≥6.2  –  <6.4
linuxlinux_kernel6.4any
linuxlinux_kernel6.4any
linuxlinux_kernel6.4any
linuxlinux_kernel6.4any
linuxlinux_kernel6.4any
linuxlinux_kernel6.4any
linuxlinux_kernel6.4any

References 9

  • cert-portal.siemens.com https://cert-portal.siemens.com/productcert/html/ssa-265688.html
  • git.kernel.org https://git.kernel.org/stable/c/00b19ee0dcc1aef06294471ab489bae26d94524e
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/116b0e8e4673a5faa8a739a19b467010c4d3058c
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/49ce99ae43314d887153e07cec8bb6a647a19268
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/6f3ae02bbb62f151b19162d5fdc9fe3d48450323
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/b7be6c737a179a76901c872f6b4c1d00552d9a1b
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/e26d3009efda338f19016df4175f354a9bd0a4ab
    Patch
  • lists.debian.org https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html
    Third Party Advisory
  • lists.debian.org https://lists.debian.org/debian-lts-announce/2024/06/msg00020.html
    Third Party Advisory

Remediation

  • git.kernel.org https://git.kernel.org/stable/c/00b19ee0dcc1aef06294471ab489bae26d94524e
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/116b0e8e4673a5faa8a739a19b467010c4d3058c
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/49ce99ae43314d887153e07cec8bb6a647a19268
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/6f3ae02bbb62f151b19162d5fdc9fe3d48450323
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/b7be6c737a179a76901c872f6b4c1d00552d9a1b
    Patch
  • git.kernel.org https://git.kernel.org/stable/c/e26d3009efda338f19016df4175f354a9bd0a4ab
    Patch